Lucene search

K
cveRedhatCVE-2007-2875
HistoryJun 11, 2007 - 10:30 p.m.

CVE-2007-2875

2007-06-1122:30:00
CWE-189
redhat
web.nvd.nist.gov
50
cve-2007-2875
integer underflow
cpuset_tasks_read
linux kernel
local users
kernel memory
nvd

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.5

Confidence

Low

EPSS

0.001

Percentile

28.6%

Integer underflow in the cpuset_tasks_read function in the Linux kernel before 2.6.20.13, and 2.6.21.x before 2.6.21.4, when the cpuset filesystem is mounted, allows local users to obtain kernel memory contents by using a large offset when reading the /dev/cpuset/tasks file.

Affected configurations

Nvd
Node
linuxlinux_kernelRange<2.6.20.13
OR
linuxlinux_kernelRange2.6.212.6.21.4
Node
debiandebian_linuxMatch3.1
Node
canonicalubuntu_linuxMatch6.06lts
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04

References

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.5

Confidence

Low

EPSS

0.001

Percentile

28.6%